Twitter phishing using TinyURL

In April, 2008 I posted about how TinyURL is a very bad idea. One of my reasons for it being a bad idea:

If you don’t give the proper URL, I can’t tell:

  • Whether it’s a link to some likely spam/other hostile site

The phishing scam seen on Twitter is exactly this – sending people obfuscated URLs then hoping they don’t notice the actual domain when they open them. Working, too.

Tags:

Leave a Reply